Title: Third-Party Riskย Analyst
Location:ย McLean,ย VAย (5 days - Onsite)
ย
Job Overview
The Third-Party Risk Analyst will support Enterprise Operationally Critical Third Parties (EOCTP) and Enterprise Vulnerability Incident Management (VIM) programs. This role partners closely with Governance Advisors and enterprise stakeholders to drive risk oversight, data analysis, reporting, and program execution within a financial services environment.
ย
Key Responsibilities
Risk & Program Management
Partner with the Governance Advisor to execute EOCTP and VIM programs.
Ensure divisions comply with internal guidance for managing third-party risk.
Support crisis response activities involving third parties.
Project manage the data management platform supporting EOCTP and VIM.
Launch and review risk assessments across operational, financial, legal/compliance, reputational, and lifecycle domains.
Analyze program requirements and propose solutions, risks, and impact assessments.
Data Analysis & Reporting
Aggregate and analyze enterprise data for periodic and ad hoc reporting.
Independently extract and interpret KRIs and KPIs.
Develop monthly and quarterly third-party metrics dashboards.
Maintain the Vulnerability Incident Management tracker.
Synthesize complex data into clear, executive-ready insights.
Document and track vulnerability incidents and control evidence.
Stakeholder & Project Coordination
Establish and maintain strong relationships with enterprise stakeholders.
Facilitate meetings, forums, and follow-ups to drive project goals.
Support leadership using OneTrust workflows and processes.
Monitor and document third-party risk and cybersecurity trends.
Documentation & Communications
Required Qualifications
Bachelorโs degree in Risk Management, Business Administration, Finance, Data Analytics, Project Management, Information Security, or related field.
5+ yearsย of experience in risk management or third-party risk management (financial services preferred).
Strong hands-on data analysis experience.
Advanced proficiency in Microsoft Office Suite:
Excel (required)
Word
PowerPoint
Power BI
Experience aggregating and interpreting enterprise data.
Excellent professional writing and communication skills.
Strong multitasking and time-management abilities.
Experience in third-party risk assessment, remediation, and monitoring.
Knowledge of cybersecurity or information security incident management.
Familiarity with third-party risk frameworks and methodologies.
Ability to work onsite MondayโFriday in McLean, VA.
Preferred Qualifications
Experience with OneTrustย platform.
Background in financial services risk environments.
Exposure to enterprise vulnerability management programs.
Key Skills
Enterprise Risk Management
Third-Party Risk Management (TPRM)
Data Analysis & Aggregation
KPI/KRI Development
Executive Reporting
Microsoft Excel (Advanced)
Power BI
Stakeholder Management
Incident Management
Strong Written Communication